Senior Cybersecurity Analyst

Juno Beach, FL, US, 33408

NextEra Energy

Discover how NextEra Energy is leading America's energy evolution using an all forms of energy strategy to keep prices low for customers.

View all jobs at NextEra Energy

Apply now Apply later

Requisition ID:  88850 

Florida Power & Light Company is the largest electric utility in the U.S., delivering clean, affordable, and reliable electricity to approximately 12 million Floridians. With one of the nation’s cleanest power generation fleets and top-tier reliability, we are setting new standards in the energy industry. Ready to make an impact? Join our exceptional team today and help shape the future of energy!

 

Position Specific Description

NextEra Energy seeks a Senior Security Analyst to join our Enterprise Security Architecture team. This role provides an excellent opportunity for cybersecurity professionals looking to advance their careers while contributing to comprehensive security assessments and risk analysis. Embedded within a team that champions analytical excellence, encourages data-driven decision making, and nurtures the development of cybersecurity expertise, this role offers significant opportunities for professional growth.

 

As a Senior Analyst specializing in cybersecurity, you'll strengthen NextEra's security posture through thorough assessment of protective controls, comprehensive risk analysis, and the development of security blueprints and standards aligned to corporate policies. The role calls for detail-oriented security professionals capable of evaluating the effectiveness of our technology security measures, conducting risk assessments, and supporting the architectural team's strategic initiatives through analytical insights.

 

Continuous learning and adaptation are essential as you develop expertise across various IT disciplines through active assessment of protective controls. You will evaluate network security infrastructure effectiveness, including firewalls and intrusion detection systems, and assess cloud security implementations within AWS and Azure platforms to ensure adherence to security best practices. Your work will include analyzing endpoint security deployments such as EDR tools, anti-malware, antivirus, and encryption solutions. You'll conduct security assessments and threat modeling to evaluate application security protective measures, assess data encryption implementations and DLP strategy effectiveness, and analyze IAM systems including Active Directory, SSO, and MFA configurations. Additionally, you'll evaluate mobile security settings and MDM solution effectiveness while conducting risk assessments and ensuring alignment with cybersecurity frameworks like NIST, CIS, CIP, ISO, and SOX. Your assessment work will also extend to OT security controls and communication protocols.

 

  • Security Control Assessment - Execute enterprise security compliance activities by performing comprehensive reviews, audits, assessments, and validation of security controls across technology domains
  • Risk Analysis & Documentation - Conduct thorough risk assessments of current and future hardware and software technologies, documenting findings and creating requirements for security improvements
  • Blueprint Development - Create and maintain security standards, blueprints, and control frameworks aligned to corporate policies, ensuring consistent application across the enterprise
  • Assessment Methodology Enhancement - Contribute to the refinement of assessment procedures and deliver comprehensive security documentation, including control evaluations, risk matrices, and compliance reports to support architectural decisions
  • Cross-functional Collaboration - Partner with senior architects and technical subject matter experts to ensure consistent application of security standards and facilitate knowledge transfer
  • Technology Evaluation - Research industry security trends and evaluate the effectiveness of existing, new, and emerging security technologies to inform strategic decisions
  • Additional Duties - Undertake other job-related activities as assigned

Job Overview

This job performs ongoing cybersecurity risk reviews for new and existing technologies and services and supports ongoing and new cybersecurity projects.  Individuals develop requirements for and implement technical security projects and tools, as well as define the company’s cybersecurity policies and control framework.  This position collaborates with the company’s IT department and business units to identify the need for, select, and deploy technical controls to meet specific security requirements. Employees in this role build processes and standards to ensure security requirements continue to be met.

Job Duties & Responsibilities

  • Administers, operates and monitors NextEra Energy (NEE) information security sensors, logging, alerting and other detection mechanisms to identify and respond to threats
  • Acts as subject matter expert for one or multiple assigned cybersecurity technology stacks (e.g., identity and access management, network intrusion detection and prevention, host based security tools)
  • Collaborates with security architecture to identify, evaluate and recommend new security technologies for suitability within NEE’s environment and security posture
  • Communicates ongoing cybersecurity activities, priorities and risk measurements or mitigations at multiple organizational levels
  • Provides guidance for security activities and requirements in the system development life cycle (SDLC) and application development efforts. Participates in organizational projects, as required
  • Performs other job-related duties as assigned
     

Required Qualifications

  • High School Grad / GED
  • Bachelor's or Equivalent Experience
  • Experience: 4+ years

Preferred Qualifications

  • Certified Information Systems Aud (CISA) certification

 

NextEra Energy offers a wide range of benefits to support our employees and their eligible family members. Click here to learn more.

 

Employee Group:  Exempt
Employee Type:  Full Time
Job Category:  Information Technology
Organization:  Florida Power & Light Company 
Relocation Provided:  Yes, if applicable

 

NextEra Energy is an Equal Opportunity Employer. Qualified applicants are considered for employment without regard to race, color, age, national origin, religion, marital status, sex, sexual orientation, gender identity, gender expression, genetics, disability, protected veteran status or any other basis prohibited by law. 

 

NextEra Energy provides reasonable accommodation in its application and selection process for qualified individuals, including accommodations related to compliance with conditional job offer requirements, consistent with federal, state, and local laws. Supporting medical or religious documentation will be required where applicable and permitted by applicable law. To request a reasonable accommodation, please send an e-mail to recruiting-coordinator.sharedmailbox@nexteraenergy.com, providing your name, telephone number and the best time for us to reach you. Alternatively, you may call 1-844-694-4748. Please do not use this line to inquire about your application status.

 

NextEra Energy will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor’s legal duty to furnish information.

 

NextEra Energy does not accept any unsolicited resumes or referrals from any third-party recruiting firms or agencies. Please see our policy for more information.

 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0
Category: Analyst Jobs

Tags: Active Directory Antivirus Application security Audits AWS Azure C CISA Cloud Compliance EDR Encryption Endpoint security Firewalls IAM Intrusion detection Malware Mobile security Network security NIST Risk analysis Risk assessment SDLC Security assessment SOX SSO Strategy

Perks/benefits: Career development Relocation support Startup environment

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.